Hello!
So I'm new to Splunk, and I have a very long event but I'm only interested in the below two lines (there are a lot of lines above and below these two lines):
05:54:24.100 [33140] [BAF3E974-33AA-4651-FF04-12355EF15677] POST << https://xx.xx.xx/xx/xxx/xxxx/xxx/
---------- MAX REQUEST TIME WARNING (100000 ms)
Is there any way to get only these two line into a new field?